Security Advisory
CVE-2021-45041
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
SuiteCRM before 7.12.2 and 8.x before 8.0.1 allows authenticated SQL injection via the Tooltips action in the Project module, involving resource_id and start_date.